URDev
URDev4ever
Backend Developer | Offensive Security & OSINT Learner | Python & CLI Tools
Languages
Repos
25
Stars
35
Forks
0
Top Language
Python
Loading contributions...
Top Repositories
LLM Attack Testing Toolkit is a structured methodology and mindset framework for testing Large Language Model (LLM) applications against logic abuse, prompt injection, jailbreaks, and workflow manipulation.
Static is a lightweight, dependency-free typosquatting reconnaissance tool written in pure Python. It generates common typo variations of a target domain and checks them using DNS and HTTP/HTTPS heuristics to identify potentially available domains and redirect behavior.
đź” JWTelescope is an advanced CLI tool for decoding, inspecting, and performing security analysis on JSON Web Tokens (JWTs). It is designed for bug bounty hunters, pentesters, and developers who want fast insight into JWT structure, claims, and common misconfigurations.
SKULLR is a fully automated wrapper around FFUF designed to enhance web content discovery. It includes automatic installation, protocol detection, wordlist management, false-positive checks, structured reporting, and subdomain discovery—all in one command.
URDev’s Ultimate Injection Template is my personal payload collection: a comprehensive reference collection of web injection vectors, focused primarily on client-side execution surfaces in modern and legacy web applications.
Repositories
25No description provided.
SOTA Open Source TTS
LLM Attack Testing Toolkit is a structured methodology and mindset framework for testing Large Language Model (LLM) applications against logic abuse, prompt injection, jailbreaks, and workflow manipulation.
Simple real-time network connectivity monitor written in Python.
Small shell helper to compile and run C programs quickly from the terminal.
A high-performance TCP port scanner written in Java using non-blocking I/O (java.nio). Designed to scan thousands of ports quickly while collecting basic service banners and fingerprints.
ClientVault is a lightweight, in-page web security tool that lets you inspect, analyze, and manage all client-side storage used by a website — including cookies, localStorage, sessionStorage, and more. Built for developers, pentesters, and bug bounty hunters.
A curated collection of logic injection, type confusion, and edge-case payloads designed to break unsafe assumptions in application logic.
URDev’s Ultimate Injection Template is my personal payload collection: a comprehensive reference collection of web injection vectors, focused primarily on client-side execution surfaces in modern and legacy web applications.
Limsy is a small command-line tool designed to analyze HTTP rate-limiting behavior of web services and APIs.
CJChecker is a small command-line tool that checks web applications for basic Clickjacking protection by analyzing HTTP response headers.
A lightweight in-browser Request Viewer that intercepts and displays fetch/XHR requests in real time. Includes filters, live UI, POST parsing, export to JSON, auto-copy, and a floating DevTools console panel. Just paste it into DevTools and start capturing.
ReqEye is a CLI assistant for HTTP request analysis, designed to help security researchers, bug bounty hunters, and pentesters identify high‑value entry points worth manual testing. It does not scan targets, send traffic, or claim vulnerabilities. ReqEye focuses on where to look, not on making assumptions.
RoverCrawler is a single-file Python web crawler designed to explore websites and generate a tree-mapped representation of their structure.
IPFinder is a lightweight, cross-platform CLI tool written in Python that allows you to retrieve detailed information about any IPv4 address.
Dork Factory is a cross-platform, interactive command-line tool designed to generate high-quality Google and Yandex dorks for Passive Recon & Discovery.
Static is a lightweight, dependency-free typosquatting reconnaissance tool written in pure Python. It generates common typo variations of a target domain and checks them using DNS and HTTP/HTTPS heuristics to identify potentially available domains and redirect behavior.
Scopex is a lightweight, passive-first reconnaissance tool designed to identify WordPress attack surfaces safely and efficiently, while strictly respecting scope boundaries.
đź” JWTelescope is an advanced CLI tool for decoding, inspecting, and performing security analysis on JSON Web Tokens (JWTs). It is designed for bug bounty hunters, pentesters, and developers who want fast insight into JWT structure, claims, and common misconfigurations.
FUFP (File Upload Fuzz Pack) is a curated collection of files designed to test, fuzz, and analyze file upload mechanisms in web applications.
whythis is a small CLI tool that lets you attach human explanations to files on your system.
A very simple, safe, and cross-platform command-line tool to copy text from files or stdin directly to your system clipboard.
lockstr is a secure, minimal, command-line file encryption tool built on Fernet symmetric cryptography.
NearPath is a lightweight, guided fuzzing tool designed to discover hidden web application endpoints by combining shallow crawling, JavaScript mining, and heuristic path mutation.
SKULLR is a fully automated wrapper around FFUF designed to enhance web content discovery. It includes automatic installation, protocol detection, wordlist management, false-positive checks, structured reporting, and subdomain discovery—all in one command.